Saturday, 21 Jun 2025
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Colocation > Critical AWS Vulnerabilities Allow S3 Attack Bonanza
Colocation

Critical AWS Vulnerabilities Allow S3 Attack Bonanza

Last updated: August 12, 2024 11:17 am
Published August 12, 2024
Share
Critical AWS Vulnerabilities Allow S3 Attack Bonanza
SHARE

Six crucial vulnerabilities in Amazon Internet Companies (AWS) may have allowed risk actors to focus on organizations with distant code execution (RCE), exfiltration, denial-of-service assaults, and even account takeovers.

“Many of the vulnerabilities had been thought-about crucial as a result of they gave entry to different accounts with minimal effort from the attacker perspective,” Aqua’s lead safety researcher Yakir Kadkoda tells Darkish Studying.

Throughout a briefing on August 7 at Black Hat USA in Las Vegas, researchers at Aqua Safety revealed that they found new assault vectors utilizing bugs “Bucket Monopoly” and “Shadow Assets.” The impacted AWS companies embody Cloud Formation, CodeStar, EMR, Glue, SageMaker, and Service Catalog.

Upon discovering the vulnerabilities in February, the Aqua researchers reported them to AWS, which confirmed the problems and rolled out mitigations to the respective companies piecemeal between March and June. Nonetheless, open supply iterations may nonetheless be weak.

‘Bucket Monopoly’: Attacking Public AWS Account IDs

The researchers first uncovered Bucket Monopoly, an assault technique that may considerably increase the success price of assaults that exploit AWS S3 buckets – i.e., on-line storage containers for managing objects, akin to recordsdata or photographs, and assets required for storing operational information…

Associated:Omdia: AWS Dominated $57B Cloud Storage Companies Market in 2023

Continue reading this article in Dark Reading.



Source link

See also  Europe’s largest cloud and AI data centre gets approved
TAGGED: attack, AWS, Bonanza, Critical, vulnerabilities
Share This Article
Twitter Email Copy Link Print
Previous Article How the chip giant missed a big opportunity How the chip giant missed a big opportunity
Next Article Assessing the State of Data Center Supply Chains in H2 2024 Assessing the State of Data Center Supply Chains in H2 2024
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Nyobolt Raises $30M in Funding

Nyobolt, a Cambridge, UK-based developer of charging applied sciences, raised $30M in funding. The spherical…

April 19, 2025

AI innovation package launched by European Commission to support startups and SMEs

The European Commission has launched an AI innovation package to support European startups and SMEs…

January 31, 2024

Insider Raises $500M in Series E Funding

Insider, a NYC-based AI-native omnichannel expertise and buyer engagement platform, raised $500m in Sequence E…

November 1, 2024

Need GPUs? Take a look at microclouds

As most IT folks know, GPUs are in excessive demand and are essential for operating…

May 16, 2024

What Makes Ethereum The Next Crypto Hotshot?

Bitcoin has acquired important consideration from crypto traders for varied causes. Firstly, it was the…

March 1, 2024

You Might Also Like

Alibaba Cloud to launch second data centre in South Korea
Colocation

Alibaba Cloud to launch second data centre in South Korea

By saad
Africa Data Centres and Blue Turtle partner
Colocation

Africa Data Centres and Blue Turtle partner

By saad
EDGNEX Data Centers by DAMAC to build $2.3 billion Jakarta facility
Colocation

EDGNEX Data Centers by DAMAC to build $2.3 billion Jakarta facility

By saad
Record US$13.3B AWS Australia data centre investment
Cloud Computing

Record US$13.3B AWS Australia data centre investment

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.OkNoPrivacy policy
You can revoke your consent any time using the Revoke consent button.Revoke consent